Oliver D. Reithmaier

@odr_k4tana@infosec.exchange
730 Followers
325 Following
5.7K Posts
HCI Researcher working towards his PhD @uni Hannover in Usable Security & Privacy. Psychologist (Masters @LMU). Research about Social Engineering (#phishing), Knowledge in CyberSec, Methods (IRT in USEC). Loves Stats (Bayes, Mixed Modeling, ML, SEM). Former Infosec Consultant. Student of everything, master of nothing.

#Cocktail recipe for the festive season. I call it the "Mulled Mez".

Mezcal 1.5 oz (I like Montellobos)
Chocolate Liqueur 0.5 oz
Pimento Dram (homemade) 0.5 oz
Pepper infused Vodka 0.5 oz
Chili Schnaps 0.25 oz (homemade, use what you know and adjust. Goal is noticeably spicy, but not too much. It should not overpower, but power up the other flavours).
1 Dash Chocolate Bitters
2 Dashes Peychaud's Bitters

Stir in Stirring Glass, drain into coup, garnish with orange zest.

Alle wollen immer nur die Kinder beschützen mittels Vorratsdatenspeicherung, Chatkontrolle, Massenüberwachung, Bewegungsprofilen, Alterskontrolle, Internetsperren und so weiter, aber wenn es darum geht, denselben Kindern einen lebenswerten Planeten zu hinterlassen, hört der Schutz plötzlich auf.

Are you a security researcher or journalist? We want to hear from you — please take this survey!

@PogoWasRight at DataBreaches, and yours truly at ~ this week in security ~ are running this survey to better understand the state of legal demands and criminal threats in cybersecurity.

https://forms.gle/yAiNNq2gTqE6ctWU8

Survey about legal and criminal threats experienced by journalists and security researchers

Researchers who try to responsibly disclose leaks, vulnerabilities, and other security breaches or mishaps may face legal threats or lawsuits. Similarly, journalists may find themselves threatened with lawsuits or other legal consequences if they report on leaks or breaches. Both researchers and journalists also face threats by criminals ("threat actors") if they report on them in ways the threat actors find unflattering or harmful. In our many years of reporting on leaks, breaches, and criminal gangs, DataBreaches.net and Zack Whittaker have often exchanged "war stories" about what threats we have received or had to contend with. After one particularly tiring week, we wanted to conduct a survey of researchers and journalists to ask about their experience with threats. We are using a broad definition of "researcher" to include self-defining or volunteer researchers (and not just academic or vendor-based researchers), as well as a broad definition of "journalist," to include bloggers and anyone who regularly reports on news and research, including commentary sites. Here are our questions, and we hope you will respond. Responses can be anonymous, but it will be helpful if you provide a real name or moniker and contact information, so we can follow up if we have questions. (Responses are encrypted in transmission and at-rest in line with Google's privacy policies. We plan to close this survey by end of day January 18, 2026.) Thank you for taking the time to complete this survey. (To report a survey bug, please reach out.)

Google Docs
Thinking about getting rid of the bsky bridge for my account. Honestly close to zero interactions from there and the more I read about the platform, the less I like it.
Würden wir die Logik, die gerne auf Arbeitslose angewendet wird, konsequent durchsetzen, müssten wir ständig drohen, allen das Gehalt kürzen, damit sie sich mehr anstrengen und produktiver werden.

One thing I wish folks knew better about "Linux" that the annoying evangelists never seem to care to mention.

One of the most important differences from other platforms if *how you get your software*.

You don't download it from the author/publisher who might be (these days, is) bundling malware.

You don't get it from a walled garden with commercial incentives to let publishers hurt you.

You don't have to fumble around Google trying to find if the site offering it is reputable.

You get it from a party, usually made up of dedicated volunteers, who believe in the platform and who are vetting all the software they build and package for you. Usually the same one you got your base system from.

Fahre jetzt acht Jahre E-Auto, brauchte keine Wartung für E-Motor/Batterien und registriere keine Ladeverluste, Desinformationen über E-Autos werden nur von Diesel Dieter gestreut
New (FBI) director's cut of Home Alone 2 released just in time for Christmas

We tracked like 17 million train arrivals last year to see where delays happen, and this is the result 🗺️

Find out the best and worst stations, routes and times of day in our 2025 Wrapped overview: https://chuuchuu.com/2025wrapped

(on that note, we have a new website so check that out too)